diff --git a/Dockerfile b/Dockerfile index eb7644fa66206d294dfa93cfd8305caf705972a2..c4f175a0f5d591ec1485254ba461039f04a708ef 100644 --- a/Dockerfile +++ b/Dockerfile @@ -2,7 +2,7 @@ ARG BASE_REGISTRY=nexus-docker-secure.levelup-dev.io ARG BASE_IMAGE=ubi8 ARG BASE_TAG=8.2 -FROM quay.io/coreos/clair:v2.1.6 as base +FROM quay.io/coreos/clair:v2.1.7 as base FROM ${BASE_REGISTRY}/${BASE_IMAGE}:${BASE_TAG} as build diff --git a/hardening_manifest.yaml b/hardening_manifest.yaml index 165a0556b1d1a6054044a1872af5d5fe6624c615..7ce1ece2bd4b8a162629297932ffad534d8ddc66 100644 --- a/hardening_manifest.yaml +++ b/hardening_manifest.yaml @@ -8,7 +8,7 @@ name: "opensource/quay/clair" # The most specific version should be the first tag and will be shown # on ironbank.dsop.io tags: -- "v2.1.6" +- "v2.1.7" - "latest" # Build args passed to Dockerfile ARGs @@ -27,7 +27,7 @@ labels: org.opencontainers.image.url: "https://github.com/quay/clair" # Name of the distributing entity, organization or individual org.opencontainers.image.vendor: "Red Hat" - org.opencontainers.image.version: "v2.1.6" + org.opencontainers.image.version: "v2.1.7" # Keywords to help with search (ex. "cicd,gitops,golang") mil.dso.ironbank.image.keywords: "security,scanning,container" # This value can be "opensource" or "commercial" @@ -37,8 +37,8 @@ labels: # List of resources to make available to the offline build context resources: -- tag: quay.io/coreos/clair:v2.1.6 - url: docker://quay.io/coreos/clair@sha256:ac7ea2811ac7f21a140b048c9b02bd9854b881b62dca0a4f7bfc7220db399710 +- tag: quay.io/coreos/clair:v2.1.7 + url: docker://quay.io/coreos/clair@sha256:0962dd91c2f5de60ea2c0019fb275bc463fce6f59db96597e09e645627439909 - filename: musl.tar.gz url: https://musl.libc.org/releases/musl-1.2.0.tar.gz validation: